libsnowflakeclient is the Snowflake Connector for C/C++. Versions starting from 0.5.0 to before 2.2.0, incorrectly treat malformed requests that caused the HTTP response status code 400, as able to be retried. This could hang the application until SF_CON_MAX_RETRY requests were sent. This issue has been patched in version 2.2.0.
History

Fri, 09 May 2025 20:00:00 +0000

Type Values Removed Values Added
First Time appeared Snowflake
Snowflake connector For C\/c\+\+
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:snowflake:connector_for_c\/c\+\+:*:*:*:*:*:*:*:*
Vendors & Products Snowflake
Snowflake connector For C\/c\+\+

Tue, 29 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Apr 2025 04:45:00 +0000

Type Values Removed Values Added
Description libsnowflakeclient is the Snowflake Connector for C/C++. Versions starting from 0.5.0 to before 2.2.0, incorrectly treat malformed requests that caused the HTTP response status code 400, as able to be retried. This could hang the application until SF_CON_MAX_RETRY requests were sent. This issue has been patched in version 2.2.0.
Title Snowflake Connector for C/C++ retries malformed requests
Weaknesses CWE-573
References
Metrics cvssV3_1

{'score': 3.3, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2025-04-29T04:34:37.061Z

Updated: 2025-04-29T13:40:22.200Z

Reserved: 2025-04-22T22:41:54.911Z

Link: CVE-2025-46330

cve-icon Vulnrichment

Updated: 2025-04-29T13:40:17.288Z

cve-icon NVD

Status : Analyzed

Published: 2025-04-29T05:15:46.817

Modified: 2025-05-09T19:37:48.193

Link: CVE-2025-46330

cve-icon Redhat

No data.